Off-by-one error in alterMIME 0.1.10 and 0.1.11 allows remote attackers to cause a denial of service (crash) via an x-header that causes snprintf overwrite the FFGET_FILE variable with a (null) byte.
A product calculates or uses an incorrect maximum or minimum value that is 1 more, or 1 less, than the correct value.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/8992 | third party advisory vdb entry |
http://www.securityfocus.com/bid/4650 | patch vdb entry broken link third party advisory |
http://www.pldaniels.com/altermime/CHANGELOG | release notes |